Ïîéìàíû â ðàçäåëå Ïîìîãèòå, îò÷åò çà ïåðèîä 27.09.2015 - 28.09.2015
[LIST][*][thread=190572]not-a-virus:AdWare.BAT.Clicker.af[/thread] -> c:iexplore.bat[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-7.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.@u1@k8Q2PzaO )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-1-7.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.@u1@k8Q2PzaO )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-11.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.yv1@kaolLYhO )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-3.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.yv1@kaolLYhO )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-5.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.iv1@kiDfX7mO )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-10.exe ( DrWEB: Trojan.Crossrider1.22993 )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-1-6.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.Cz1@k4RgkObi )[*][thread=190559]not-a-virus:AdWare.NSIS.Adwapper.do[/thread] -> c:program files (x86)shop and save upca241b62-4120-4b3e-90e0-20aed5ccd165-6.exe ( DrWEB: Trojan.Crossrider1.22993, BitDefender: Gen:Application.Heur.yz1@keSJeugi )[*][thread=190559]not-a-virus:AdWare.Win32.ConvertAd.azh[/thread] -> c:program files (x86)*3de0294-1443281475-05a8-be06-c40700080009hnsp9cf6.tmp[*][thread=190559]not-a-virus:AdWare.Win32.ConvertAd.azi[/thread] -> c:program files (x86)*3de0294-1443281475-05a8-be06-c40700080009jnsm86cd.tmp ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=190538]not-a-virus:AdWare.Win32.DealPly.cmt[/thread] -> c:usersuserappdatalocalpricefountainpricefountainw.exe ( BitDefender: Gen:Variant.Symmi.48800 )[*][thread=190538]not-a-virus:AdWare.Win32.DealPly.cmt[/thread] -> c:usersuserappdatalocalpricefountainpricefountain.exe ( DrWEB: Trojan.DownLoader11.49876 )[*][thread=190559]not-a-virus:AdWare.Win32.Eorezo.afob[/thread] -> c:program files (x86)gmsd_ru_005010099gmsd_ru_005010099.exe[*][thread=190559]not-a-virus:AdWare.Win32.Eorezo.afob[/thread] -> c:usersgorkavchenkoappdatalocalgmsd_ru_005010099upgmsd_ru_005010099.exe[*][thread=190559]not-a-virus:AdWare.Win32.PriceGong.a[/thread] -> c:usersgorkavchenkoappdatalocalsmartwebsmartwebapp.exe ( DrWEB: Adware.Shopper.845, AVAST4: Win32:PriceGong-B [Adw] )[*][thread=190559]not-a-virus:AdWare.Win32.PriceGong.a[/thread] -> c:usersgorkavchenkoappdatalocalsmartwebsmartwebhelper.exe ( DrWEB: Adware.Shopper.845 )[*][thread=190559]not-a-virus:AdWare.Win32.PriceGong.a[/thread] -> c:usersgorkavchenkoappdatalocalsmartweb__u.exe ( DrWEB: archive:, AVAST4: Win32:Malware-gen )[*][thread=190559]not-a-virus:AdWare.Win32.PriceGong.a[/thread] -> c:usersgorkavchenkoappdatalocalsmartwebswhk.dll ( DrWEB: Adware.Shopper.845, AVAST4: Win32:BHO-AOK [Adw] )[*][thread=189995]not-a-virus:RiskTool.Python.Miner.b[/thread] -> c:windowsproxy.exe ( DrWEB: Tool.BtcMine.292 )[*][thread=190572]not-a-virus:RiskTool.Win64.NetFilter.b[/thread] -> c:windowssystem32driversinnfd_1_10_0_14.sys ( DrWEB: Adware.Plugin.274 )[*][thread=190559]not-a-virus:WebToolbar.Win32.CroRi.fte[/thread] -> c:usersgorkavchenkoappdataroamingbgvpowi1aeapepys4ao4gbnugl.exe[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-6.exe[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-3.exe ( BitDefender: Gen:Application.Heur.Av1@kavXcneO )[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-10.exe[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-6.exe[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-7.exe ( BitDefender: Gen:Application.Heur.fv1@kenVtVjO )[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-7.exe ( BitDefender: Gen:Application.Heur.fv1@kenVtVjO )[*][thread=190424]not-a-virus:WebToolbar.Win32.CrossRider.amqa[/thread] -> d:program filesciplus-4.5vv15.078b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5.exe ( BitDefender: Gen:Application.Heur.kv1@k4mfm6lO )[*][thread=190556]Trojan.BAT.StartPage.nw[/thread] -> c:usersìàðèøàappdatalocalbrowsersbrowser2.bat[*][thread=190559]Trojan.BAT.StartPage.nw[/thread] -> c:programdatabrowsersbrowser6.bat[*][thread=190556]Trojan.BAT.StartPage.nw[/thread] -> c:programdatabrowsersbrowser0.bat[*][thread=190559]Trojan.BAT.StartPage.nw[/thread] -> c:programdatabrowsersbrowser0.bat[*][thread=190567]Trojan-Ransom.Win32.Blocker.frrr[/thread] -> c:usersf038~1appdatalocaltempzimlx.exe ( BitDefender: Gen:Variant.Pykspa.1, AVAST4: Win32:Renos-KY [Trj] )[*][thread=37678]Trojan-Ransom.Win32.Cryakl.abx[/thread] -> explore.exe ( AVAST4: Win32:Malware-gen )[*][thread=190599]Virus.Win32.Sality.gen[/thread] -> c:oimrqd.pif ( DrWEB: Win32.Sector.31, BitDefender: Win32.Sality.3, AVAST4: Win32:Sality )[*][thread=190599]Virus.Win32.Sality.gen[/thread] -> d:goenbf.exe ( DrWEB: Win32.Sector.31, BitDefender: Win32.Sality.3, AVAST4: Win32:Sality )[*][thread=190599]Virus.Win32.Sality.gen[/thread] -> h:eqyp.exe ( DrWEB: Win32.Sector.31, BitDefender: Win32.Sality.3, AVAST4: Win32:Sality )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:windowssystem32kibpqfexrhajvfilqmkd.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:windowskibpqfexrhajvfilqmkd.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersf038~1appdatalocaltempwqfpmxshxjydlrqp.exe . ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàdocumentsdocuments.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:windowssystem32wqfpmxshxjydlrqp.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> d:wktxotirbh.bat ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:programdatamicrosoftwindowsstart menuprogramsstartupstartup.pif ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàappdataroamingmicrosoftinternet explorerquick launchlaunch.scr ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàvideosvideos.pif ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàappdataroamingmicrosoftwindowsstart menuprogramsstartupstartup.pif ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersf038~1appdatalocaltempdyozxjfvmzpvellln.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersf038~1appdatalocaltempdyozxjfvmzpvellln.exe . ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàmusicmusic.scr ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersf038~1appdatalocaltempwqfpmxshxjydlrqp.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersf038~1appdatalocaltempxumzznldwldlwfhjnif.exe ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:usersàñàèíîâàfavoritesfavorites.bat ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> c:wktxotirbh.bat ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[*][thread=190567]Worm.Win32.AutoRun.iea[/thread] -> f:wktxotirbh.bat ( DrWEB: Trojan.MulDrop5.14836, BitDefender: Trojan.Dropper.VIO, AVAST4: Win32:Chydo [Drp] )[/LIST]